MULTI-VRF AND MULTI-SERVICE INSERTION ON EDGE GATEWAY VIRTUAL MACHINES

    公开(公告)号:US20210352004A1

    公开(公告)日:2021-11-11

    申请号:US17179174

    申请日:2021-02-18

    Applicant: VMware, Inc.

    Abstract: In an embodiment, a method for a VRF and multi-service insertion on edge gateways is described. In an embodiment, the method comprises obtaining a rule configuration. Based on, at least in part, the rule configuration, a rule table is created. The rule table comprises rule data records, wherein a rule data record comprises packet attributes and a redirection identifier. A policy configuration comprising policy records is obtained. Each policy record comprises a redirection identifier, a next_hop, and an address pair for interfaces. A mapping between VRF identifiers and address pairs is generated. Based on, at least in part, the mapping and the policy configuration, a policy table is generated. The policy table comprises table records, wherein a table record comprises a redirection identifier, a next_hop, and an address pair. The rule and policy tables are used to redirect a packet from an edge gateway to a service virtual machine.

    TUNNEL-BASED SERVICE INSERTION IN PUBLIC CLOUD ENVIRONMENTS

    公开(公告)号:US20200236046A1

    公开(公告)日:2020-07-23

    申请号:US16251080

    申请日:2019-01-18

    Applicant: VMware, Inc.

    Abstract: Example methods and systems are provided a network device to perform tunnel-based service insertion in a public cloud environment. An example method may comprise establishing a tunnel between the network device and a service path. The method may also comprise: in response to receiving a first encapsulated packet, identifying the service path specified by a service insertion rule; generating and sending a second encapsulated packet over the tunnel to cause the service path to process an inner packet according to one or more services. The method may further comprise: in response to receiving, from the service path via the tunnel, a third encapsulated packet that includes the inner packet processed by the service path, sending the inner packet processed by the service path, or a fourth encapsulated packet, towards a destination address of the inner packet.

    SERVICE PATH COMPUTATION FOR SERVICE INSERTION

    公开(公告)号:US20200274801A1

    公开(公告)日:2020-08-27

    申请号:US16282802

    申请日:2019-02-22

    Applicant: VMware, Inc.

    Abstract: The disclosure provides an approach for computing service paths for a service chain identifying a sequence of services. One method includes including information about a plurality of hosts in a heap. Each of the plurality of hosts includes at least one service virtual computing instance (SVCI) configured to provide at least one of the services of the service chain. The information includes, for each of the plurality of hosts, a number of service paths computed for the service chain at the host and one of a number of services provided by unused SVCIs of the host or a number of consecutive services provided by unused SVCIs of the host. The method further includes selecting a host from the heap based on the information. The method further includes generating a first service path for the service chain, the first service path identifying at least one SVCI of the selected host.

    PACKET HANDLING DURING SERVICE VIRTUALIZED COMPUTING INSTANCE MIGRATION

    公开(公告)号:US20200045148A1

    公开(公告)日:2020-02-06

    申请号:US16051048

    申请日:2018-07-31

    Applicant: VMware, Inc.

    Abstract: Example methods are provided for packet handling during service virtualized computing instance migration in a software-defined networking (SDN) environment. The method may comprise configuring first reachability information to associate a first service virtualized computing instance with an active role, and second reachability information to associate a second service virtualized computing instance with a standby role. In response to determination that a switchover is required to facilitate a migration of the first service virtualized computing instance, the first reachability information may be updated to associate the first service virtualized computing instance with the standby role, and the second reachability information to associate the second service virtualized computing instance with the active role. The method may also comprise: in response to detecting a completion of the migration, updating the first reachability information to associate the first service virtualized computing instance with a target host instead of a source host.

Patent Agency Ranking